1update-ca-certificates(8) Forstern, Bavaria update-ca-certificates(8)
2
3
4
6 update-ca-certificates - A tool to manage system-wide CA certificates
7
9 update-ca-certificates [OPTIONS]
10
12 update-ca-certificates is a tool to manage system-wide x509 Certfica‐
13 tion Authority certificates in OpenSSL index directory style and the
14 shared system NSS storage. It extracts the hash of a x509 certificate
15 file and creates a symlink in /etc/pki/tls/certs so OpenSSL will access
16 the certificate and use it for client certificate verification. It also
17 adds the cert to the shared system NSS storage in /etc/pki/nssdb with
18 the appropriate trust markers.
19
21 The following options are accepted when running "update-ca-certifi‐
22 cates":
23
24 -a, --add
25 adds a CA certficate to the systems CA store
26
27 -d, --delete
28 deletes broken links of CA certificates
29
30 -n, --nss
31 also use shared NSS store
32
33 -i, --inputcert
34 X509 CA certficate input file
35
37 Sascha Thomas Spreitzer <sspreitzer@fedoraproject.org>
38
40 Please see <http://fedorahosted.org/update-ca-certificates>
41
43 Copyright (C) 2010 Sascha Thomas Spreitzer and various contributors.
44 This is free software. You may redistribute copies of it under the
45 terms of the GNU General Public License 2
46 http://www.gnu.org/licenses/gpl-2.0.html or later. There is NO WAR‐
47 RANTY, to the extent permitted by law.
48
50 X509(1)
51
52
53
54sspreitzer August 2010 update-ca-certificates(8)